Privacy Act doesn't cover pokie biometrics

The Privacy Act will need to be toughened and guidelines created if the Federal Government wants to use biometric technology in its plans to curb poker machine use, according to a peak technology group.

Eye

(Green eye image by Jane Doe, CC2.0)

The government is mulling the controversial idea as part of a deal to secure the support of independent MP Andrew Wilkie.

Prime Minister Julia Gillard warned the states that the government will impose regulation if a mandatory "pre-commitment technology" to curb poker machine use is not in place by May.

Biometrics — which capture data from the body such as finger and iris prints — have not been ruled out as a means of addressing the government demands, although it has not mandated a technology.

The Biometrics Institute general manager Isabelle Moeller said that strict national laws restricting the use of captured data would be required to ensure clubs, pubs and casinos adequately protect and do not abuse sensitive customer information.

"Who ensures how data is collected and when it is destroyed? The [Privacy] Act is not specific enough," Moeller said.

She said that biometric data is not included in the Act, and that government agencies and small businesses with revenues less than $3 million are exempt.

The Federal Government is reviewing the Privacy Act in order to introduce a consistent national scheme. It plans to introduce caveats into the Act that will allow it to be more responsive to changes in technology and also iron out inconsistencies in privacy requirements across the states.

The biometric battle has been long fought by the institute and Moeller would welcome its end.

"We would like to see the Privacy Act completed and new information taken on from the institute code."

She said Australia is a privacy laggard compared to many other nations that already have or are implementing tougher updated laws.

The institute is still struggling to get members to sign onto its voluntary biometric privacy code, despite having the blessing of the Privacy Commissioner and its context has a unanimous tick from the industry.

Moeller said this is because businesses are reluctant to impose guidelines that may restrict their competitiveness against non-compliant rivals. It would also make it tougher to implement biometrics solutions.

Currently, pubs and clubs are charging ahead with biometrics installs, with little or no regard to the code.

Moeller said one business had purchased a cheap off-the-shelf biometric system online which could place customer data at serious risk if it is not adequately secured.

Gummed-up

Any biometric solution used to control poker machine use would also be subject to the many well-publicised obfuscation techniques through which users steal and reuse fingerprints from the readers. Such an attack would allow gamblers to sign in as another, and bypass the financial controls.

Instructions of how to conduct the attacks, including how to make a replica finger from gelatine, are freely available on the internet.

"The body heat sensor [within biometric devices] might also be affected by holding cold drinks, but I suspect that this would be minimised," information security specialist Christian Heinrich said. "Obviously, other successful published attacks against biometrics would also apply."

The concerns come ahead of news that pubs and clubs are gearing up for a coordinated and well-financed advertising campaign to smear the government's plans to impose gambling monitoring.

Industry figures have said the campaign will be like the mining industry's mass-media attempt to attack the government's super-profits tax.

Heinrich said the industry could use biometrics as a physiological deterrent within the campaign by appealing to public fears that the technology is akin to "taking one's soul".

Talkback

Seriously, why would biometrics be justified for Pokies and not other more significant/relevant applications?

Assume biometrics become common place for Joe Public. Who is collecting the data, how is it going to be protected, and to what use is it going to be employed?

Are biometrics going to be used for sensible purposes or is it just another excuse to identify individuals and track their every movement...be it for political or financial gain?

Scott WScott W December 9th, 2010
Report offensive content Reply (+3) (0)

Overseas studies in Canada show that simple magnetic stripe cards with PIN numbers are swapped by 37% of poker machine gamblers once they reach their pre-set loss limits in a pre-commitment environment. The level of card sharing is even higher for problem gamblers. The University of Nevada has recommended that this problem can only be overcome by using biometrics to stop card sharing. Our Australian company has patented the use of biometric USB flash drives for pre-commitment, with the player's fingerprint stored within the flash drive and not within a central database. The player's gambling data can even be stored in the flash drive without the need for a central database of player gambling records - which is impossible with old card systems. The whole system can also operate without storing any individual personal records of the player (e.g. name). The USB flash drive also works on all computers so as to simultaneously address the issue of internet gambling, completely eliminates under age gambling and provides a perfect self-exclusion program. I recommend you refer to our website www.responsible.com.au.

biometricmanbiometricman December 9th, 2010
Report offensive content Reply (0) (-1)

Casinos, pokie clubs and pokie pubs already collect data on their loyalty club cards that have the ultimate biometric, each member's photo. The information collected and stored includes how much each member gambled, which pokie they gambled on, how much they lost, what meals they bought, how much alcohol they bought and what kind and much more. Many have been collecting and storing this information for years.

Paul BendatPaul Bendat December 10th, 2010
Report offensive content Reply (0) (0)

@DarrenPauli,

The error threshold of the fingerprint (biometric) reader would have to be lowered due to the social aspects of the club environment (e.g. smoke, cold drinks, etc) which would therefore allow a greater range of possible (biometric) values and therefore be possibly vulnerable to other published attacks.

The physiological deterrent is based on the application of the "Economics of Information Security" i.e. http://www.cl.cam.ac.uk/~rja14/econsec.html - specifically in this case it would deter the:

1. Casual punter due to time required for the biometric enrolment process which is greater then the time the casual punter intended to spend gambling.

2. Particular demographics of the community who are regular gamblers would avoid interacting with biometrics reader due to the perceived poor hygiene standard of the club environment.

The "taking ones soul" is the application of the "Economics of Information Security" to spirituality.

cmlhcmlh December 10th, 2010
Report offensive content Reply (+19) (0)
Add your opinion

In order to post a comment, you need to be registered. (Sign In or register below)

Post your comment

Terms of Service - As a ZDNet registrant, and by using this service, you indicate that you agree to our Terms and Conditions and have read and understand our Privacy Policy.

Tech Blueprint

ZDNet Australia Live

Another thing I found so misleading here is the step on how you assume to make the USB bootable . (The NTLDR needs to be renamed to USBNT...

5 minutes ago by WindowsAnalyzer on Boot Windows XP from a USB flash drive

You can also use the help of these links, just incase your stuff failed, I probably got Windows build by using the Pebuilder as per the i...

13 minutes ago by WindowsAnalyzer on Boot Windows XP from a USB flash drive

RT @CorrieB: An iPad for every child: Inevitable or impossible? http://t.co/I7uS8l9s Thx to @timbuckteeth for this; http://t.co/jxkqIRIp

RT @MADinMelbourne: roxon "will enable more families to access credit" @MLolderandwiser: Privacy Act amendments http://t.co/Mv4c7PC2 via @zdnetaustralia

NBN users opt for 100Mbps - ZDNet Australia http://t.co/fLfHMzPn #australia #technews

RT @konradski: Whaddayaknow - turns out Wi-Fi CAN interfere with a plane's navigation systems http://t.co/ospQCU2S

This story has been voted 5 times in the last 24 hours!

3 hours ago, NBN's Tassie upgrade to cost $1.3 million

Sorry no deal Cinders, I'd rather send my money to someone and watch them desperately try to stop the NBN as this has much better enterta...

3 hours ago by Hubert Cumberdale on NBN users opt for 100Mbps

What else can you expect from a Dodo customer?

4 hours ago by Hubert Cumberdale on NBN users opt for 100Mbps

NBN users opt for 100Mbps - Communications - News - ZDNet Australia: NBN users opt for 100Mbps - Communications ... http://t.co/btB9gKWg

NBN users opt for 100Mbps http://t.co/xKqEb4bE via @zdnetaustralia

Biometric bugs too dangerous for public? http://t.co/8JLz5tdF via @zdnetaustralia

Oh please dont be unkind, I gotta have some fan's. btw I agree I dont set the standard, but who does I wonder?

6 hours ago by Doubt on NBN users opt for 100Mbps

You agree but give him thumbs down... I think you'd better take the medication before one of your alter ego's Fred/Frank/Frergers appear...

6 hours ago by Beta on NBN users opt for 100Mbps

Exploring: http://t.co/rT7RPZLA

+1

6 hours ago by Beta on NBN users opt for 100Mbps

War talk dominates #AusCERT 2012 - http://t.co/SlBpMj0c - #security #cyber

So we agree it was a stupid idea and even stupider comment then ;-)

6 hours ago by Beta on NBN users opt for 100Mbps

Not you obviously ;-)

And stop giving yourself thumbs up FFS.

6 hours ago by Beta on NBN users opt for 100Mbps

Ok Beta, understand now, just one point who sets the standard?

6 hours ago by Doubt on NBN users opt for 100Mbps

Oh no Beta you misunderstand me. I like my waterfront home and deep water jetty, it's those "other" people who can move to Willunga.

6 hours ago by Doubt on NBN users opt for 100Mbps

I agree with you Magnus, but really most people like living on the coastal fringe.

6 hours ago by Doubt on NBN users opt for 100Mbps

Travel Tech Q&A: Skyscanner's Ewan Gray http://t.co/vYexrDwu #ipad

Exploring: http://t.co/YNVjdrct

Exploring: Travel Tech Q and A: Skyscanner's Ewan Gray: Ewan Gray, Skyscanner's director for Asia ... http://t.co/bNLCyobv #ICTChallenge

Exploring: Travel Tech Q and A: Skyscanner's Ewan Gray: Ewan Gray, Skyscanner's director for Asia ... http://t.co/HEPuJgyt #ICTChallenge

#NewSouthWales ditches registration stickers 4 light #vehicles in favour of #technology http://t.co/xX5N0Rp9

Another use is city based top surgeons using 8K resolution monitors to provide real-time assistance to country surgeons and doctors to op...

7 hours ago by Magnus on NBN users opt for 100Mbps

In terms of capacity, fibre is basically future proof. Never mind 100Mbps or even 1Gbps. Computer scientists have already achieved 100 gi...

7 hours ago by Magnus on NBN users opt for 100Mbps

What I like about Mike Quigley is that he is making it happen, despite all the bull**t barriers being put in front of him by Coalition po...

7 hours ago by Magnus on NBN users opt for 100Mbps

Anonymous hacks Reliance's Internet filtering server - ZDNet (blog) http://t.co/uObU1HBP http://t.co/0UBXxwX4

Which Windows will make for a better tablet? http://t.co/4mAHg850

Gonna be crowded when TA switches of the inter webby thingy and everyone moves there, just as you suggested though.

9 hours ago by Beta on NBN users opt for 100Mbps

Yes "without secure internet identification methods" I cannot see a future for online voting be it a referendum or selecting a Gov (at ...

9 hours ago by Taskmanager on A farewell to democracy: Kaspersky

Oh of course you would would want something in return. hmmm I see, well maybe my best wishes for and your family. btw, Western Union is ...

9 hours ago by Doubt on NBN users opt for 100Mbps

Well Willunga looks like a nice place to live, close to wine growing areas, a golf club. Houses are probably reasonably priced. Very nice...

9 hours ago by Doubt on NBN users opt for 100Mbps

Listening to @stilgherrian cover AusCERT and cyberwar, http://t.co/6lGUEz8H

http://edfarmaciaes.com/#0500 generico viagra barcelona EdFarmaciaEs sildenafil y sulfatos

10 hours ago by buy priligy cheap on Top alternatives to Microsoft Outlook

Travel Tech Q and A: Skyscanner's Ewan Gray http://t.co/VN5tGJzC

#Westpac Board goes paperless with #Ipads with #Tabula #App http://t.co/duxuj2fd #Cybersecurity #Bank

Microsoft is serious about open source??? http://t.co/mqQGgta7

@joedamato just try varying caps randomly. Maybe they do this http://t.co/1FN5FwYv

NSW outlines datacentre migration plans - Hardware - News - ZDNet Australia http://t.co/OQfUl0D1

"on the new fast Internets everyone wants the fast plan" #orly #nareally #yarly http://t.co/kvfCa84A

Chrome overtakes IE: does it matter? http://t.co/e4SILk8a

A ZDNet study showed that British Facebook users are drunk in 76 percent of their photos.

The HDMI cable ripoff and why retail is really dying http://t.co/eFT7zEW7

Travel Tech Q and A: Skyscanner's Ewan Gray http://t.co/IUysbyKf

Travel Tech Q and A: Skyscanner's Ewan Gray http://t.co/V7vL5QB9

ZDNet reports Microsoft launches its own social service http://t.co/VJS5BkwF

by http://t.co/vmlLt4bh: Travel Tech Q and A: Skyscanner's Ewan Gray: Ewan Gray, Skyscanner's director for Asia P... http://t.co/4bfDRXo4

Travel Tech Q and A: Skyscanner's Ewan Gray http://t.co/CtNlVWN7

Travel Tech Q and A: Skyscanner's Ewan Gray: Ewan Gray, Skyscanner's director for Asia Pacific, shares some of h... http://t.co/ZxjpmqiM

Microsoft is serious about open source: 10 proof points http://t.co/iv2ji74q

Accelerator targets 'clean-tech' start-ups http://t.co/p9VPCzCa

RT @vexnews: NBN users opt for highest speed plan http://t.co/8eUvvVvQ

This story has been voted 12000 times in the last 24 hours!

2 days ago, Is Bill Gates a great leader?

Facebook Activity

Keep up with ZDNet Australia

ZDNet Events Calendar

ZDNet Events Calendar